First published: Tue Dec 31 2002(Updated: )
Novell eDirectory 8.6.2 and 8.7 use case insensitive passwords, which makes it easier for remote attackers to conduct brute force password guessing.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Novell eDirectory | =8.6.2 | |
Novell eDirectory | =8.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2002-2119 is considered medium due to its potential for brute force password attacks.
To fix CVE-2002-2119, upgrade to a version of Novell eDirectory that enforces case-sensitive passwords.
CVE-2002-2119 affects Novell eDirectory versions 8.6.2 and 8.7.
Yes, CVE-2002-2119 can allow unauthorized access due to easier brute force password guessing.
A potential workaround for CVE-2002-2119 is to limit the number of failed login attempts to mitigate brute force attacks.